In TrustZone in all Android releases from CAF using the Linux kernel, an Improper Validation of Array Index vulnerabilit
A remote code execution vulnerability in the Android media framework (libmpeg2). Product: Android. Versions: 6.0, 6.0.1,
A elevation of privilege vulnerability in the Android media framework (libstagefright). Product: Android. Versions: 4.4.
The sanity_check_ckpt function in fs/f2fs/super.c in the Linux kernel before 4.12.4 does not validate the blkoff and seg
A elevation of privilege vulnerability in the Android media framework (libstagefright). Product: Android. Versions: 4.4.
In all Qualcomm products with Android releases from CAF using the Linux kernel, in functions msm_isp_check_stream_cfg_cm
A remote code execution vulnerability in the Android media framework (libhevc). Product: Android. Versions: 5.0.2, 5.1.1
The NFSv4 server in the Linux kernel before 4.11.3 does not properly validate the layout type when processing the NFSv4
An array index error in the fig2dev program in Xfig 3.2.6a allows remote attackers to cause a denial-of-service attack o
Array index error in the scanstring function in the _json module in Python 2.7 through 3.5 and simplejson before 2.6.1 a
Array index error in LightDM (aka Light Display Manager) 1.14.3, 1.16.x before 1.16.6 when the XDMCP server is enabled a
Isub service in P10 Plus and P10 smart phones with earlier than VKY-AL00C00B157 versions and earlier than VTR-AL00C00B15
Frequently Asked Questions
What is CWE-129?
CWE-129 (CWE-129) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-129?
There are 751 CVE records associated with CWE-129 in our database. Of these, 62 are critical severity, 418 are high severity, and 118 are medium severity.
How can I protect against CWE-129 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-129 using AI-powered security agents.
Detect CWE-129 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-129 vulnerabilities across your infrastructure.
Get Started